I regularly get emails several times a week about failed login attempts on my WordPress account. Besides being aware that it’s happening, I’m not sure what I can do to stop it. I have no idea who’s trying to access my account so frequently from various IP addresses, and this has been going on for months.
It’s quite common to see repeated failed login attempts — bots often scan WordPress sites trying common usernames like “admin.” You can install a plugin like Wordfence or Limit Login Attempts Reloaded to block IPs after a few failed tries. Also, make sure to disable the default “admin” user, use a strong password, and enable two-factor authentication for extra security.
You might want to install a security plugin like Wordfence or Limit Login Attempts Reloaded — they can block repeated login attempts and notify you of suspicious activity.